openswan kayıtları
openswan üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %16,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-59 Improper Link Resolution Before File Access ('Link Following')2
- CWE-264 Permissions, Privileges, and Access Controls1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2004-0590İstismar yok | FreeS/WAN 1.x and 2.x, and other related products including superfreeswan 1.x, openswan 1.x before 1.0.6, openswan 2.x before 2.1.4, and stropenswan · openswan | Kritik10,0 | — | %2,8 | 6 Ara 2004 |
33İzleyin | CVE-2005-3671İstismar yok | The Internet Key Exchange version 1 (IKEv1) implementation in Openswan 2 (openswan-2) before 2.4.4, and freeswan in SUSE LINUX 9.1 before 2.openswan · openswan | Yüksek7,8 | — | %7,5 | 18 Kas 2005 |
29İzleyin | CVE-2005-0162İstismar yok | Stack-based buffer overflow in the get_internal_addresses function in the pluto application for Openswan 1.x before 1.0.9, and Openswan 2.x openswan · openswan | Yüksek7,2 | — | %1,7 | 26 Oca 2005 |
27İzleyin | CVE-2008-4966İstismar yok | linux-patch-openswan 2.4.12 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/snap##### and (b) /tmp/nightly#openswan · linux-patch-openswan · CWE-59 | Orta6,9 | — | %0,4 | 6 Kas 2008 |
17İzleyin | CVE-2008-4190Kavram kanıtı | The IPSEC livetest tool in Openswan 2.4.12 and earlier, and 2.6.x through 2.6.16, allows local users to overwrite arbitrary files and executopenswan · openswan · CWE-59 | Orta4,4 | — | %1,1 | 24 Eyl 2008 |
14İzleyin | CVE-2011-2147İstismar yok | Openswan 2.2.x does not properly restrict permissions for (1) /var/run/starter.pid, related to starter.c in the IPsec starter, and (2) /var/openswan · openswan · CWE-264 | Düşük3,6 | — | %0,3 | 20 May 2011 |
- CVE-2004-059041Planlayın
FreeS/WAN 1.x and 2.x, and other related products including superfreeswan 1.x, openswan 1.x before 1.0.6, openswan 2.x before 2.1.4, and str
KritikCVSS 10,0İstismar yokEPSS %3openswan · openswan6 Ara 2004
- CVE-2005-367133İzleyin
The Internet Key Exchange version 1 (IKEv1) implementation in Openswan 2 (openswan-2) before 2.4.4, and freeswan in SUSE LINUX 9.1 before 2.
YüksekCVSS 7,8İstismar yokEPSS %7openswan · openswan18 Kas 2005
- CVE-2005-016229İzleyin
Stack-based buffer overflow in the get_internal_addresses function in the pluto application for Openswan 1.x before 1.0.9, and Openswan 2.x
YüksekCVSS 7,2İstismar yokEPSS %2openswan · openswan26 Oca 2005
- CVE-2008-496627İzleyin
linux-patch-openswan 2.4.12 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/snap##### and (b) /tmp/nightly#
OrtaCVSS 6,9İstismar yokEPSS %0openswan · linux-patch-openswan6 Kas 2008
- CVE-2008-419017İzleyin
The IPSEC livetest tool in Openswan 2.4.12 and earlier, and 2.6.x through 2.6.16, allows local users to overwrite arbitrary files and execut
OrtaCVSS 4,4Kavram kanıtıEPSS %1openswan · openswan24 Eyl 2008
- CVE-2011-214714İzleyin
Openswan 2.2.x does not properly restrict permissions for (1) /var/run/starter.pid, related to starter.c in the IPsec starter, and (2) /var/
DüşükCVSS 3,6İstismar yokEPSS %0openswan · openswan20 May 2011